package cn.moefly.sample.config;

import org.springframework.context.annotation.Configuration;
import org.springframework.security.config.annotation.web.builders.HttpSecurity;
import org.springframework.security.config.annotation.web.configuration.EnableWebSecurity;
import org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter;

@Configuration
@EnableWebSecurity
public class SecurityConfig extends WebSecurityConfigurerAdapter {

    public static String[] WHITE_LIST = {
            "/**",      //TODO：Open all addresses for develop，Please replace with appropriate rules
            "/actuator/health",
            "/actuator/**",
            "/console/**"
    };
    
    @Override
    protected void configure(HttpSecurity http) throws Exception {
        http
            .csrf().disable()
            .authorizeRequests()   
                .antMatchers(WHITE_LIST).permitAll()
                .anyRequest().authenticated()
                    ;
    }


}
